Vulnerability Details CVE-2017-8002
EMC Data Protection Advisor prior to 6.4 contains multiple blind SQL injection vulnerabilities. A remote authenticated attacker may potentially exploit these vulnerabilities to gain information about the application by causing execution of arbitrary SQL commands.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.023
EPSS Ranking 84.2%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.5
Products affected by CVE-2017-8002
-
cpe:2.3:a:emc:data_protection_advisor:5.7
-
cpe:2.3:a:emc:data_protection_advisor:5.7.1
-
cpe:2.3:a:emc:data_protection_advisor:5.8
-
cpe:2.3:a:emc:data_protection_advisor:6.0
-
cpe:2.3:a:emc:data_protection_advisor:6.1
-
cpe:2.3:a:emc:data_protection_advisor:6.2
-
cpe:2.3:a:emc:data_protection_advisor:6.3